The Yellow Yard Searchbar WordPress plugin prior to 2.8.2 does not escape some URL parameters before outputting them back to the user, leading to Reflected Cross-Site Scripting
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
yellowyard yellow yard searchbar |